Loading HuntDB...

GHSA-2mfj-vmvj-q937

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

x86 pv: Race condition in typeref acquisition Xen maintains a type reference count for pages, in addition to a regular reference count. This scheme is used to maintain invariants required for Xen's safety, e.g. PV guests may not have direct writeable access to pagetables; updates need auditing by Xen. Unfortunately, the logic for acquiring a type reference has a race condition, whereby a safely TLB flush is issued too early and creates a window where the guest can re-establish the read/write mapping before writeability is prohibited.

Related CVEs

Key Information

GHSA ID
GHSA-2mfj-vmvj-q937
Published
June 10, 2022 12:00 AM
Last Modified
June 22, 2022 12:00 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 15, 2025 6:32 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.